5 Sources
[1]
The Latest Way to Catch a Virus: AI-Driven Porn Sites - Decrypt
Ever since the commercial internet began to reach mainstream users, porn sites have always been used to carry malware. The latest trend: Russian hackers are using AI-driven "deepnude generators" -- applications that create nude images from user-uploaded pictures -- to infect the stupidly
[2]
Russian Hackers Push AI Nude Image Generators to Spread Malware
A Russian hacking group is exploiting interest in AI-generated porn to spread malware to unsuspecting users. A group known as FIN7 or Carbanak is circulating the malware through a collection of seven "AI Deepnude" generator websites, according to research from cybersecurity vendor Silent
[3]
Russian Hackers Are Using Fake AI "Nudify" Sites to Steal Data
"They are looking for people who are doing borderline shady things to start with." Multiple sites masquerading as "nudify" services, which use AI to deepfake clothed photographs into often nonconsensual nudes, have been linked to a notorious Russian hacker collective that was believed to be
[4]
FIN7 hackers launch deepfake nude "generator" sites to spread malware
The notorious APT hacking group known as FIN7 has launched a network of fake AI-powered deepnude generator sites to infect visitors with information-stealing malware. FIN7 is believed to be a Russian hacking group that has been conducting financial fraud and cybercrime since 2013, with ties to
[5]
A Network of AI 'Nudify' Sites Are a Front for Notorious Russian Hackers
Multiple sites which promise to use AI to 'nudify' any photos uploaded are actually designed to infect users with powerful credential stealing malware, according to new findings from a cybersecurity company which has analyzed the sites. The researchers also believe the sites are run by Fin7, a
Share
Copy Link
The notorious Russian hacking group FIN7 has launched a network of fake AI-powered deepnude generator sites to infect visitors with information-stealing malware, exploiting the growing interest in AI-generated content.

The notorious Russian hacking group FIN7, previously believed to be defunct, has resurfaced with a new malware campaign exploiting the growing interest in AI-generated content. Cybersecurity firm Silent Push has uncovered a network of fake "AI Deepnude" generator websites linked to FIN7, designed to spread malware to unsuspecting users
1
.FIN7 has set up approximately 4,000 fake domains and subdomains, including at least seven "deepnude generator" websites described as "honeypots of malware"
1
. These sites, with names like easynude(.)website and ai-nude(.)cloud, promise to create nude images from user-uploaded pictures using AI technology2
.Users are lured to these sites through search engine queries and advertisements. When visitors attempt to download the "free" AI nude generator software, they are redirected to a new domain featuring a Dropbox link or another source hosting malicious payloads
1
4
. The downloaded files contain information-stealing malware such as Lumma Stealer, Redline Stealer, and D3F@ck Loader4
.The malware is designed to steal passwords, internet cookies, cryptocurrency wallets, and other sensitive data from infected PCs
2
. While the seven identified sites have been taken down, cybersecurity experts warn that new sites following similar patterns are likely to emerge2
4
.FIN7, also known as Carbanak, has been active since 2012 and is believed to have caused $3 billion in damage worldwide
1
. The group has previously targeted various industries, particularly the hospitality and food sectors, to steal customer data and make fraudulent bank transfers1
. They have even set up fake security companies to recruit unwitting cybersecurity professionals1
.Related Stories
The use of deepfake technology for creating nonconsensual explicit images has raised significant legal and ethical concerns. In response to the growing problem, the city of San Francisco recently filed a lawsuit against 18 illegal deepfake websites and apps offering to "nudify" women and girls
1
. These sites collectively received over 200 million visits in the first six months of 20241
.Ahmed Banafa, a professor at San Jose State University College of Engineering, emphasizes the challenge of detecting and preventing such malware attacks. He notes that even if server farms are confiscated, it's relatively easy for hackers to set up new operations
1
. Cybersecurity experts stress that human behavior remains the weakest point in network security1
3
.This incident highlights the ongoing challenges at the intersection of AI technology and cybersecurity. As AI tools become more sophisticated and widely available, they are increasingly being exploited by cybercriminals for malicious purposes. The case of FIN7's AI nude generator scam serves as a stark reminder of the need for improved cybersecurity measures and increased public awareness about the risks associated with emerging technologies
5
.Summarized by
Navi
[4]
12 May 2025•Technology

19 Nov 2024•Technology

01 Apr 2025•Technology
